feat: onboarding setup-jfrog-cli #2
Merged
StepSecurity Actions Security / StepSecurity Required Checks
succeeded
Dec 5, 2025 in 20s
StepSecurity Required Checks
Finished StepSecurity Required Checks
- NPM Package Cooldown Check - Fails if any package version in the PR was released within the configured cooldown period, helping to avoid brand-new (and potentially unreviewed or malicious) releases
- Pwn Request Vulnerabilities Check - Checks for Pwn Request vulnerabilities in the PR via risky triggers
- Script Injection Check - Checks for script injection vulnerabilities in the PR
- NPM Compromised Packages Check - Checks for compromised npm package versions in the PR
Details
✅ NPM Compromised Packages Check
No Compromised npm packages are added in current PR.
✅ Script Injection Vulnerabilities Check
No Script Injection vulnerabilities found in this PR.
✅ Pwn Request Vulnerabilities Check
No Pwn Request vulnerabilities found in this PR.
✅ NPM Package Cooldown Check
No npm package upgrades to recent releases found in current PR.
The following npm packages are inspected in current PR (showing first 50 of 403 packages)
| Package Name | Previous Version | Current Version | file | Current Version Release Date |
|---|---|---|---|---|
| form-data | 4.0.5 | package-lock.json | 2025-11-17T04:16:07Z | |
| axios | 1.13.2 | package.json | 2025-11-04T20:01:20Z | |
| axios | 1.13.2 | package-lock.json | 2025-11-04T20:01:20Z | |
| @vercel/ncc | 0.38.4 | package-lock.json | 2025-09-18T14:15:13Z | |
| @vercel/ncc | 0.38.4 | package.json | 2025-09-18T14:15:13Z | |
| follow-redirects | 1.15.11 | package-lock.json | 2025-07-31T12:54:55Z | |
| @babel/types | 7.28.1 | package-lock.json | 2025-07-12T10:21:33Z | |
| @babel/parser | 7.28.0 | package-lock.json | 2025-07-02T08:38:22Z | |
| brace-expansion | 2.0.2 | package-lock.json | 2025-06-11T08:48:36Z | |
| @babel/helpers | 7.27.6 | package-lock.json | 2025-06-05T08:37:22Z | |
| @babel/template | 7.27.2 | package-lock.json | 2025-05-06T15:33:49Z | |
| @babel/code-frame | 7.27.1 | package-lock.json | 2025-04-30T15:08:31Z | |
| @babel/helper-validator-identifier | 7.27.1 | package-lock.json | 2025-04-30T15:08:27Z | |
| @babel/helper-string-parser | 7.27.1 | package-lock.json | 2025-04-30T15:08:26Z | |
| undici | 5.29.0 | package-lock.json | 2025-03-19T18:00:34Z | |
| get-intrinsic | 1.3.0 | package-lock.json | 2025-02-22T20:54:20Z | |
| @octokit/plugin-paginate-rest | 9.2.2 | package-lock.json | 2025-02-15T00:09:26Z | |
| @octokit/request | 8.4.1 | package-lock.json | 2025-02-15T00:08:47Z | |
| @octokit/request-error | 5.1.1 | package-lock.json | 2025-02-14T22:27:01Z | |
| @octokit/endpoint | 9.0.6 | package-lock.json | 2025-02-14T21:30:48Z | |
| call-bind-apply-helpers | 1.0.2 | package-lock.json | 2025-02-12T19:24:56Z | |
| es-object-atoms | 1.1.1 | package-lock.json | 2025-01-15T00:42:43Z | |
| get-proto | 1.0.1 | package-lock.json | 2025-01-02T20:08:02Z | |
| es-set-tostringtag | 2.1.0 | package-lock.json | 2025-01-02T04:44:14Z | |
| math-intrinsics | 1.1.0 | package-lock.json | 2024-12-19T05:58:09Z | |
| dunder-proto | 1.0.1 | package-lock.json | 2024-12-17T02:12:47Z | |
| es-define-property | 1.0.1 | package-lock.json | 2024-12-06T18:16:02Z | |
| gopd | 1.2.0 | package-lock.json | 2024-12-04T16:21:52Z | |
| has-symbols | 1.1.0 | package-lock.json | 2024-12-02T16:34:17Z | |
| cross-spawn | 7.0.6 | package-lock.json | 2024-11-18T13:59:52Z | |
| picocolors | 1.1.1 | package-lock.json | 2024-10-16T18:20:03Z | |
| micromatch | 4.0.8 | package-lock.json | 2024-08-23T16:31:18Z | |
| semver | 7.6.3 | package-lock.json | 2024-07-16T22:27:19Z | |
| semver | 7.6.3 | package.json | 2024-07-16T22:27:19Z | |
| v8-to-istanbul | 9.3.0 | package-lock.json | 2024-06-22T08:13:50Z | |
| @types/node | 20.14.8 | package-lock.json | 2024-06-22T07:35:34Z | |
| electron-to-chromium | 1.4.809 | package-lock.json | 2024-06-22T06:02:27Z | |
| is-core-module | 2.14.0 | package-lock.json | 2024-06-20T20:33:03Z | |
| typescript | 5.5.2 | package-lock.json | 2024-06-20T17:37:03Z | |
| caniuse-lite | 1.0.30001636 | package-lock.json | 2024-06-16T18:47:18Z | |
| ts-jest | 29.1.5 | package-lock.json | 2024-06-16T16:02:39Z | |
| acorn | 8.12.0 | package-lock.json | 2024-06-14T07:08:36Z | |
| prettier | 3.3.2 | package-lock.json | 2024-06-11T06:07:20Z | |
| prettier | 3.3.2 | package.json | 2024-06-11T06:07:20Z | |
| browserslist | 4.23.1 | package-lock.json | 2024-06-08T20:56:03Z | |
| @babel/core | 7.24.7 | package-lock.json | 2024-06-05T13:15:53Z | |
| @babel/helper-module-transforms | 7.24.7 | package-lock.json | 2024-06-05T13:15:48Z | |
| @babel/helper-simple-access | 7.24.7 | package-lock.json | 2024-06-05T13:15:46Z | |
| @babel/helper-module-imports | 7.24.7 | package-lock.json | 2024-06-05T13:15:46Z | |
| @babel/traverse | 7.24.7 | package-lock.json | 2024-06-05T13:15:44Z |
⏲️ History
Previous invocation results of same check:
Loading